|
|
如果我这样写一则SQL- sprintf("SELECT * FROM sometable WHERE somefield = '%s' AND somefield2 = '%s'",
- someMysqliObject->real_escape_string(someVar1),
- someMysqliObject->real_escape_string(someVar2));
复制代码 跟我这样写- someMysqliObject->real_escape_string(
- sprintf("SELECT * FROM sometable WHERE somefield = '%s' AND somefield = '%s'", somevar1, somevar2)
- );
复制代码 出来的结果有没有分别? |
|